368,657open jobs
9,442companies
50,883added this week
Browse all
Salary
$29k – $65k per year (Estimated)
Location
In office (Bengaluru)
Seniority
Senior · 6+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Endava is a global provider of digital transformation, agile software engineering, and technology consulting services. Headquartered in London, the company specializes in helping businesses across payments, financial services, healthcare, retail, and telecommunications modernize their digital architecture and product capabilities. Operating nearshore delivery centers across Europe, North America, Latin America, and Asia-Pacific, it partners with enterprises to build scalable, high-performance software solutions.

Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change.

By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital experiences that drive innovation and transform businesses.

From prototype to real-world impact - be part of a global shift by doing work that matters.

The Incident Response Analyst is part of the front line of our Cyber Threat Intelligence and Incident Response team, responsible for providing Endava with high fidelity, actionable cyber threat intelligence and specialist incident response capabilities.

Strong knowledge of the latest security threats, industry standard incident response methodologies, and investigation techniques is expected. Candidates should also demonstrate adaptability, knowledge of both incident response and cyber threat intelligence, and an eagerness to learn emerging threat actor tactics, tools and techniques.

Responsibilities:

· Act as a key responder during security incidents, supporting containment, eradication and recovery activities.

· Perform detailed investigation and analysis of security alerts, intrusions and malware using EDR, SIEM and forensic tooling.

· Support post-incident reviews, identifying root cause, control gaps and lessons learned.

· Coordinate with SOC, CTI, IT, legal and third-party providers during incidents to ensure timely and effective response

· Support evidence collection and documentation to meet legal, regulatory and internal reporting requirements.

In periods without active incident response activity, the analyst will actively support Cyber Threat Intelligence operations and initiatives

Qualifications:

· Degree in Cyber Security, Computer Science, Information Technology or a related discipline, or equivalent practical experience.

· Relevant incident response, blue team or security operations certification (for example GCIH, GCED, or equivalent).

· Demonstrated experience responding to security incidents, labs or realistic tabletop exercises.

Experience:

6-10 years experience with Incident management

· 3+ years in cybersecurity, with at least 2 years in SOC/CTI/Incident Response.

· Hands-on experience in malware analysis, memory forensics, and log analysis.

· Strong understanding of network protocols, secure configurations, and common attack techniques (MITRE ATT&CK).

· Experience supporting or participating in security incident response activities, including investigation and containment.

· Familiarity with SOC tooling such as SIEM, EDR, Threat Intelligence Platforms and alerting platforms.

· Experience analysing security alerts, logs and endpoint telemetry to identify malicious activity.

· Experience documenting incidents, investigations and lessons learned in a clear and structured manner.

Technical Skills:

· Hands-on experience with SIEM and EDR tools for alert investigation and incident analysis.

· Ability to analyse endpoint, network and log data to identify malicious activity.

· Familiarity with incident response processes, including triage, containment and recovery.

· Basic malware analysis and investigation skills, such as analysing file hashes, URLs and suspicious processes.

· Understanding of common attack vectors, vulnerabilities and exploitation techniques.

Additional Skills:

· Strong problem-solving and analytical skills.

· Ability to remain calm and decisive during high-pressure incidents.

· Excellent communication skills, both technical and non-technical.

· Continuous learning mindset and willingness to explore new tools and methods.

Discover some of the global benefits that empower our people to become the best version of themselves:

  • Finance: Competitive salary package, share plan, company performance bonuses, value-based recognition awards, referral bonus;
  • Career Development: Career coaching, global career opportunities, non-linear career paths, internal development programmes for management and technical leadership;
  • Learning Opportunities: Complex projects, rotations, internal tech communities, training, certifications, coaching, online learning platforms subscriptions, pass-it-on sessions, workshops, conferences;
  • Work-Life Balance: Hybrid work and flexible working hours, employee assistance programme;
  • Health: Global internal wellbeing programme, access to wellbeing apps;
  • Community: Global internal tech communities, hobby clubs and interest groups, inclusion and diversity programmes, events and celebrations.

At Endava, we’re committed to creating an open, inclusive, and respectful environment where everyone feels safe, valued, and empowered to be their best. We welcome applications from people of all backgrounds, experiences, and perspectives-because we know that inclusive teams help us deliver smarter, more innovative solutions for our customers. Hiring decisions are based on merit, skills, qualifications, and potential. If you need adjustments or support during the recruitment process, please let us know.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,657 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Bengaluru
$70k – $126k per year • In office • Full-Time • 4+ years exp • Bachelor's Degree • Shiloh
DevOps
AWS
Azure
GCP
Cybersecurity
Cyber Kill Chain
Defense in Depth
MITRE ATT&CK
Apply
$24k – $51k per year (Estimated) • Remote/Hybrid • Full-Time • Moscow
Node JS
JavaScript
Node JS
Commander.js
Databases
Apache Kafka
OpenSearch
PostgreSQL
Redis
DevOps
AWS
Chaos Engineering
CI/CD
GitOps
Grafana
Helm
Incident Management
Jaeger
Kubernetes
Opsgenie
PagerDuty
Prometheus
SLI/SLO/SLA
Terraform
Zabbix
Cybersecurity
Tcpdump
Management
Jira
Apply
$117k – $251k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree • Singapore
SQL
DevOps
Incident Management
Apply
$133k – $284k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree • Singapore
DevOps
Incident Management
SLI/SLO/SLA
Splunk
Management
Confluence
ServiceNow
Apply
$66k – $156k per year (Estimated) • In office • Full-Time • Singapore
SQL
DevOps
Incident Management
Apply
$87k – $175k per year (Estimated) • In office • Full-Time • 4+ years exp • United States
Python
SQL
Databases
Google BigQuery
DevOps
GCP
Analytics
ETL/ELT
Apply
$56k – $108k per year (Estimated) • In office • Full-Time • 2+ years exp • United States
SQL
Analytics
Tableau
Management
Confluence
Jira
Apply
$144k – $263k per year (Estimated) • In office • Full-Time • 12+ years exp • United States
Python
SQL
Databases
Snowflake
AI/ML
AI Agents
RAG
DevOps
Git
Harbor
Apply
Remote/Hybrid • Full-Time • Bucharest
DevOps
GCP
Terraform
Apply
$49k – $113k per year (Estimated) • Remote/Hybrid • Full-Time • 6+ years exp • Buenos Aires
Java
SQL
Java
Hibernate
Spring Boot
Databases
Apache Kafka
Cassandra
Oracle
PostgreSQL
RabbitMQ
DevOps
AWS
Azure
CI/CD
Docker
GCP
Git
GitLab CI
Jenkins
Kubernetes
OpenShift
Rest API
GitLab
Apply
$31k – $82k per year (Estimated) • In office • Full-Time • 3+ years exp • Hyderabad • Bengaluru
Apply
$31k – $73k per year (Estimated) • In office • Full-Time • 5+ years exp • Bengaluru
Apply
$16k – $34k per year (Estimated) • Remote/Hybrid • Full-Time • 2+ years exp • Bachelor's Degree • Mumbai • Bengaluru
JavaScript
PowerShell
SQL
C#
C#
.NET
Databases
Azure SQL Database
MS SQL
DevOps
Azure
Rest API
Cybersecurity
Microsoft Entra ID
QA
Postman
Swagger
Apply
$37k – $73k per year (Estimated) • In office • Internship • 4+ years exp • Bachelor's Degree • Bengaluru
Python
Scala
SQL
Databases
Apache Kafka
Databricks
AI/ML
ChatGPT
Copilot
Cursor
Spark
DevOps
AWS
Azure
CI/CD
GCP
Git
GitHub
Terraform
Apply
$41k – $89k per year (Estimated) • Remote/Hybrid • Full-Time • 8+ years exp • Bengaluru
C#
TypeScript
JavaScript
C#
.NET
Databases
Apache Kafka
AI/ML
Copilot
LLM
OpenAI
Frontend
Angular
GraphQL
DevOps
Azure
Azure AKS
Azure DevOps
CI/CD
Docker
GitHub
GitHub Actions
Grafana
Kubernetes
Prometheus
Rest API
Apply
See all jobs
This is one of many
368,657 more open roles from verified company boards, updated every day.